216.73.217.22

Botnet Installing NiceRAT Malware

· Published 13/06/2024 12:49 · Modified 13/06/2024 13:33

Export JSON

Essential information

Published
13/06/2024 12:49
Modified
13/06/2024 13:33
Tags
2024-06-13 nicerat
Related entities
24 observables, 14 techniques (mitre), 1 malware

Description

This analysis discusses the proliferation of botnets constructed through the distribution of malware disguised as legitimate software. These botnets are subsequently leveraged to install additional malware strains, including , a Python-based Remote Access Tool (RAT) capable of collecting system information, browser data, and cryptocurrency wallet details for exfiltration. The report highlights the persistent nature of these botnets, which have been operational since 2019, underscoring the importance of user vigilance when downloading software from untrusted sources.

External references